Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Idaho National Laboratory

Group: siegedsec

Discovered by ransomware.live: 2023-12-08

Estimated attack date: 2023-11-26

Description:

nuclear research, nuclear power, power plant



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • whoisresponse inl.gov
MX Records
  • inl-gov.mail.protection.outlook.com.
TXT Records
  • google-site-verification=5HtU7Sks7stX5vWOc5SQSXHJ7q7MJXeFfh2PYtuzLUA
  • atlassian-domain-verification=od2sGjYYu9B4eUc21tzf3kDn4BPatp/Q7aoDXLkX8tYjQ5ry//qB3ze2jSRrdM3o
  • box-domain-verification=be0668c027ba299345e331b3505673e9d272b849aced80d00e434c12e97e3545
  • 4d37c79b-7300-4fa5-927a-522edf04a147
  • mandrill_verify.cl4xGps9dMyZIC8MS8obBg
  • google-site-verification=5V-rQN7GZ7Om9GoHXioYjqNzEBL2xVcXtNhoO0kNBCI
  • apple-domain-verification=KKP9pOcaIqOfhiE2
  • notion_verify_ERqTkvk}8]fsC*cKQ#mYN6:+iNqeQ]KKj^hEi.*t5!psD@HB@]*?!0v#YMEfY8L8]Z0D9_
  • asv=24baee9e703b55865d7a5a023915cde0
  • meltwater_sso_20210219_T3-4848
  • amazonses:3CymOYzKBXZuZuX9oYSP192J7bmNOBDu6agp3e6vPDc=
  • docusign=811d3974-1fa4-44f1-a7ee-9243489cdd11
  • ca3-b209afef2e8f43ce848ca23655faecf5
  • facebook-domain-verification=lsfqiowkmlx6gen6drirxigvy8dgf8
  • v=spf1 mx ip4:134.20.0.0/16 ip4:141.221.0.0/16 ip4:141.221.250.11 ip4:10.150.0.20 ip4:155.248.8.180 include:_spf.atlassian.net include:servicenowservices.com include:spf.protection.outlook.com include:_spf.concurcompleat.com include:spf-na.exlibrisgroup.c" "om include:docebosaas.com -all
  • atlassian-sending-domain-verification=1e84621d-6336-42f2-96c6-1e46dc126072
  • openai-domain-verification=dv-qvtW8cGGr8fQGKzu5Fp31Kp7
  • adobe-idp-site-verification=1e4ef6af758bb11c452de2c4e4c0ea6b5d6e41ab336b2db3f43d6f5799cc4391
  • autodesk-domain-verification=nik9W0uosWOHaYYT6eVC
Cloud / SaaS Services Detected
Adobe Apple Atlassian Amazon SES/WorkMail Box Mailchimp Autodesk DocuSign

Leak Screenshot:

Leak Screenshot